Uploaded image for project: 'Apache NiFi'
  1. Apache NiFi
  2. NIFI-8990

Upgrade Groovy to 2.5.14 and 2.4.21

Attach filesAttach ScreenshotVotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

Details

    Description

      Groovy versions 2.5.13 and 2.4.20 and have a vulnerability related to directory creation in extension methods as described in CVE-2020-17521. Groovy 2.5.14 and 2.4.21 address this problem as well as other vulnerabilities in earlier versions.

      Attachments

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            exceptionfactory David Handermann
            exceptionfactory David Handermann
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Time Tracking

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Remaining Estimate - 0h
                0h
                Logged:
                Time Spent - 1.5h
                1.5h

                Issue deployment